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The joint solution by Imperva 
and Qualys improves visibility 
for application developers and 
provides instant protection 
against vulnerabilities. 
Organizations can now maintain 
optimal security while following 
the appropriate process for 
developing, testing, and 
deploying application patches. 
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UNIFIED WEB APPLICATION VULNERABILITY ASSESSMENT 
AND VIRTUAL PATCHING WITH QUALYS AND IMPERVA 


In order to protect critical business applications, security vulnerabilities must be addressed 
as soon as possible. Many organizations build security measures into their Software 
Development Life Cycle (SDLC) by implementing a process to scan for Web application 
vulnerabilities. However, manually fixing applications after a scan can take several weeks 
or even months. Any delay in fixing vulnerabilities can increase the risk of exploitation. 
Businesses are therefore forced to develop emergency fixes and tests, thus incurring 
significant operational costs and business disruption. 


The integration of QualysGuard Web Application vulnerability scanner and Imperva’s 
SecureSphere Web Application Firewall (WAF) significantly reduces the need for disrup- 
tive patching of vulnerabilities. Organizations can use QualysGuard to scan their Web 
applications for vulnerabilities and then import the scan results into SecureSphere WAF. 
SecureSphere WAF provides instant mitigation for imported vulnerabilities using a “virtual 
patch,” which limits the window of exposure and reduces the security risk on the business. 
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QualysGuard scan results are imported into SecureSphere WAF. Using Imperva WAF'’s Virtual Patching, customers can 
quickly mitigate against discovered vulnerabilities. 


Unified Web Application Vulnerability Assessment and Virtual Patching with Qualys and Imperva 


About Imperva The Imperva SecureSphere WAF integration with QualysGuard provides customers with the 
Imperva, the Data Security leader, following benefits: 

enables a complete security lifecycle for 
business databases and the applica- 
tions that use them. Over 4500 of the 
world’s leading enterprises, government 
organizations, and managed service e Reduces the window of exposure: protects against Web application vulnerabilities 


providers rely on Imperva to prevent while enabling organizations to follow their normal process of thoroughly testing and 
sensitive data theft, protect against data applying patches. 


breaches, secure applications, and 


e Eliminates emergency fix and test cycles: immediately remediates discovered Web 
application vulnerabilities via a “virtual patch” without the need for ad-hoc 
development intervention. 


ensure data confidentiality. The award- e Prioritizes Web application firewall alerts: eliminates false positives based on 
winning Imperva SecureSphere is the accurate, verified security risks identified by QualysGuard. 
only solution that delivers full activity A 


Generates accurate security and compliance reports: highlights attempts to exploit 


monitoring from the database to the knowin vulnerabilities: 


accountable application user and is rec- 


ognized for its overall ease of manage- e Granularly manages security vulnerabilities: imports specific types of QualysGuard 
ment and deployment. For more infor- application assessment results to the SecureSphere WAF based on severity level 
mation, visit www.imperva.com. or class. 


e Exceeds the minimum PCI DSS 6.6 requirements: provides the best protection 


About Qualys f ; ; 
available against data compromise. 


Qualys, Inc. is the leading provider of 
on demand IT security risk and compli- 
ance management solutions — delivered 
as a service. Qualys’ Software-as-a- 
Service solutions are deployed in a mat- 
ter of hours anywhere in the world, pro- 
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BT, Etisalat, Fujitsu, IBM, I(TS)2, LAC, 
NTT, SecureWorks, Symantec, Tata 
Communications, and TELUS. For more 
information, please visit 


The Imperva and Qualys integration improves visibility and provides immediate protection against Web application attacks. 


www.qualys.com. 


USA - Qualys, Inc. * 1600 Bridge Parkway, Redwood Shores, CA 94065 e T: 1 (650) 801 6100 è sales@qualys.com 

UK - Qualys, Ltd. ° Beechwood House, 2nd Floor, 10 Windsor Road, Slough, Berkshire, SL1 2EJ ¢ T: +44 (0) 1753 872101 

Germany - Qualys GmbH ¢ Munchen Airport, Terminalstrasse Mitte 18, 85356 München e T: +49 (0) 89 97007 146 

France - Qualys Technologies ¢ Maison de la Défense, 7 Place de la Défense, 92400 Courbevoie ¢ T: +33 (0) 1 41 97 35 70 Wo EMAN D SECU RITY 
Q U A LY S Japan - Qualys Japan K.K. e Pacific Century Place 8F, 1-11-1 Marunouchi, Chiyoda-ku, 100-6208 Tokyo © T: +81 3 6860 8296 

United Arab Emirates - Qualys FZE • P.O Box 10559, Ras Al Khaimah, United Arab Emirates è T: +971 7 204 1225 
www.qualys.com China - Qualys Hong Kong Ltd. * Suite 1901, Tower B, TYG Center, C2 North Rd, East Third Ring Rd, Chaoyang District, Beijing * T: +86 10 84417495 


© Qualys, the Qualys logo and QualysGuard are registered trademarks of Qualys, Inc. All other trademarks are the property of their respective owners. 03/10 


